Gentoo Archives: gentoo-dev

From: "Hanno Böck" <hanno@g.o>
To: gentoo-dev@l.g.o
Subject: Re: [gentoo-dev] Manifest2 hashes, take n+1-th
Date: Thu, 19 Oct 2017 22:33:33
Message-Id: 20171020003258.7ad4695b@pc1
In Reply to: [gentoo-dev] Manifest2 hashes, take n+1-th by "Michał Górny"
1 On Thu, 19 Oct 2017 21:08:40 +0200
2 Michał Górny <mgorny@g.o> wrote:
3
4 > manifest-hashes = SHA512 SHA3_512
5
6 Counterproposal: Just use SHA512.
7
8 There isn't any evidence that any SHA2-based hash algorithm is going to
9 be broken any time soon. If that changes there will very likely be
10 decades of warning before a break becomes practical.
11
12 Having just one hash is simpler and using a well supported one like
13 SHA512 may make things easier than using something that's still not
14 very widely supported.
15
16 --
17 Hanno Böck
18 https://hboeck.de/
19
20 mail/jabber: hanno@××××××.de
21 GPG: FE73757FA60E4E21B937579FA5880072BBB51E42

Replies

Subject Author
Re: [gentoo-dev] Manifest2 hashes, take n+1-th Gordon Pettey <petteyg359@×××××.com>
Re: [gentoo-dev] Manifest2 hashes, take n+1-th Michael Orlitzky <mjo@g.o>